A vulnerability was detected in Sipeed PicoClaw up to 0.2.9. This vulnerability affects the function rt.ReloadConfig of the file pkg/channels/pico/pico.go. Performing a manipulation of the argument message.send results in missing authorization. It is possible to initiate the attack remotely. The exploit is now public and may be used. The reported GitHub issue was closed automatically due to inactivity.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-07-10 03:16
Updated : 2026-07-10 16:16
NVD link : CVE-2026-15320
Mitre link : CVE-2026-15320
CVE.ORG link : CVE-2026-15320
JSON object : View
Products Affected
No product.
